Autoplay
Autocomplete
Previous Lecture
Complete and Continue
Active Directory Concepts and Troubleshooting
INTRODUCTION
About this course (0:58)
RECAP: AD DS OVERVIEW
Workgroup vs. domain (1:52)
AD DS overview (2:29)
Demo: Explore the default installation of AD DS (6:31)
Module 1 : Active Directory Replication
Active Directory replication (4:35)
Replication status (2:42)
Demo: Force AD replication (2:08)
AD sites (4:44)
Demo: Create 3 AD sites (1:38)
Intra-site vs. Inter-site replication (2:59)
Site links (3:36)
Demo: Configure site links and subnet objects (4:44)
Review site configurations (3:46)
Demo: Force KCC to run (1:07)
Demo: Configure 2 AD sites (1:24)
Demo: Test AD replication (2:04)
Demo: Review a client (2:39)
Tombstone lifetime (2:57)
Domain and forest functional level (DFL/FFL) (1:41)
Recommendations (1:12)
Module 2 : SYSVOL Replication
SYSVOL Concepts (1:41)
Demo: Verify SYSVOL and NETLOGON shares (1:36)
Demo: Verify SYSVOL replication status (3:20)
Demo: Verify DFSR service and backlogs (1:19)
FRS SYSVOL vs. DFSR SYSVOL (1:37)
Authoritative vs. non-authoritative restore for SYSVOL (3:45)
Demo: Fix SYSVOL replication (Apply to this demo only) (4:24)
Demo: Test SYSVOL share high availability (1:49)
SYSVOL Ready registry (0:54)
Upgrade to DFSR SYSVOL (1:28)
Demo: Perform the non-authoritative restore for DFSR SYSVOL (like D2 for FRS) (3:10)
Demo: Perform the authoritative restore for DFSR SYSVOL (like D4 for FRS) (4:26)
Module 3 : Group Policy
Group Policy Object (GPO) (3:33)
Demo: Harden Windows Server 2019 with a GPO from MSCT (7:15)
Demo: Run Group Policy Results Wizard (1:26)
Demo: Force Group Policy Update from GPMC (0:24)
GPO order, scope, filtering, and application (3:05)
GPO processing (3:14)
Troubleshoot the clients (2:38)
Demo: Backup and restore GPOs by using GPMC (1:09)
Demo: Most used GPO settings (add local admins, map drives, and set proxy) (7:04)
Module 4 : DNS Integration
DC's DNS records (2:29)
Demo: Check DC's DNS record registrations (1:47)
Basic DNS name resolution (1:50)
Internet name resolution (3:51)
Authoritative vs. non-authoritative DNS servers (1:59)
DNS forwarders (0:48)
Demo: Configure DNS forwarders (1:29)
DNS and client logons (2:53)
DNS search order, dynamic updates, and DNS zone transfer (1:59)
Demo: Configure DNS search orders (3:06)
Aging and scavenging (2:55)
Demo: Walkthrough dynamic updates, DNS zone transfer, and aging/scavenging (4:09)
Module 5: Domain Controller (DC) Health
Directory partitions (1:04)
Global Catalog (GC) server (2:27)
Universal groups & GC (2:44)
FSMO roles (4:59)
Schema Master and Domain Naming Master roles (1:42)
PDCE, RID Master, and Infrastructure Master roles (3:23)
DCDIAG (1:31)
Demo: Run DCDIAG (0:43)
Demo: Verify and transfer FSMO roles (1:35)
Demo: DCDIAG /q /e (2:00)
Time synchronization (3:18)
Demo: Configure Windows time synchronization to sync with external time sources (4:40)
Multi-homed DCs (0:51)
DC performance (2:00)
MaxPageSize (1:44)
Demo: Check your MaxPageSize's current values (0:53)
MaxConcurrentAPI (2:56)
Recommendations (0:51)
Module 6 : Operational Excellences
Disaster recovery (3:23)
Demo: Enable AD Recycle Bin & Test to restore deleted objects (2:02)
Demo: Perform a full server backup with Windows Server Backup (1:59)
Critical security updates (3:07)
Demo: Find if domain admin accounts are used to start services on any computers (1:27)
Demo: Find if there are any users who can set their password to be "blank" (1:59)
Computer accounts (5:27)
Demo: Find possible stale computer accounts (1:58)
User accounts (2:19)
Demo: Find possible stale user accounts (1:55)
Demo: Find administrative accounts with Password Never Expires enabled (1:12)
Demo: Configure Account Lockout Policy (3:39)
Useful commands and recommendations (2:25)
Demo: Delegate AD administrative tasks with Delegwiz.inf (1:45)
Demo: Revert DC VM on the virtualization host that support VM Generation ID (6:45)
Module 7 : Upgrading to Windows Server 2019 AD DS
Application behaviors (5:48)
Upgrade options (1:05)
Option 1 - New DC name and IP (1:40)
Option 2 - Demote and Promote (1:11)
Option 3 - Swap DC name and IP (1:01)
A sample upgrade plan (2:03)
Demo: Verify AD and SYSVOL replication before upgrade (2:22)
Demo: Demote DC2 (2:14)
Demo: Promote the 1st Windows Server 2019 DC with the same name & IP (DC2) (4:27)
Demo: Promote the 2nd Windows Server 2019 DC (new DC1) (3:45)
Demo: Swap DC name & IP (DC1 -> DC1-OLD) (3:25)
Demo: Swap DC name & IP (New DC1 -> DC1) (3:09)
Demo: Demote the last old DC (DC1-OLD) (1:50)
Demo: Post-upgrade tasks - Configure Time synchronization (1:13)
Demo: Post-upgrade tasks - Raise DFL and FFL (1:29)
BONUS: FASTCHECK AD HEALTH
Demo: Check AD replication status (0:14)
Demo: Check SYSVOL replication status (0:36)
Demo; Verify DC's DNS record registrations (1:29)
Demo: Run DCDIAG (Do not clear logs as this demo) (1:33)
Demo: Run DCDIAG to FSMO role owner (0:22)
Demo: Verify Time diff & synchronization (0:18)
Demo; Check DC performance (2:54)
Demo: Find missing security updates (1:18)
Demo: Check if Antivirus exclusions are configured (0:39)
END OF THE COURSE
RECAP
Thank you very much!
Udemy code for free
Universal groups & GC
Lecture content locked
If you're already enrolled,
you'll need to login
.
Enroll in Course to Unlock